Skip to main content

Vendor/product archive

fibranet / monitorix CVEs

Beta · best-effort

4 CVEs tagged to fibranet / monitorix2 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2021-3325

Published Jan 27, 2021

Monitorix 3.13.0 allows remote attackers to bypass Basic Authentication in a default installation (i.e., an installation without a hosts_deny option). This issue occurred because…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-7071

Published Dec 31, 2019

Cross-site scripting (XSS) vulnerability in the handle_request function in lib/HTTPServer.pm in Monitorix before 3.4.0 allows remote attackers to inject arbitrary web script or HT…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-7070

Published Dec 31, 2019

The handle_request function in lib/HTTPServer.pm in Monitorix before 3.3.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the URI.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1